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SEQRET 

Cost Performance (U) 

Phase 5 Review: Digital Collection-03 .4/20/2004 


Project Management 


• Original Planned (Budgeted) Cost: 

• Total Budgeted Cost*: 

• Actual Cost-at-Completion: 

• Variance** ($): 

• Variance** (%): 


$ 38,000,000 
$38,526,958 
$38,919,516 
$ 919,516 

2.42% 


*The Total Budgeted Cost reflects the contract baseline cost as revised 
by changes in system deployment requirements - schedule changes, system (s) 
configurations, additional system deployments 

•‘Variances determined using the Total Budgeted Cost and Actual Cost-at-Completion 


Note: Invoices lag cost incurred. To date $15,100,864 has been invoiced for Digital Collection-03 


*‘* SECRET*** 

Lessons Learned 


Phase 5 Review; Digital Collection-03 4/20/2004 


Project Management 


(U) Lesson 1 

- Records and documentation maintenance during the development process [project status reports, meeting 
notes, correspondence, and deliverables] provided excellent visibility of project issues and direction to 
project personnel and management. 

- Recommendation; Develop and execute a Project Management Plan that includes and is coordinated with 
the major stakeholders, in order to maintain the ability to gather and distribute pertinent information. 

(U) Lesson 2 

- Strict project management guidelines were used. The structure provided by these guidelines required 
periodic reviews in which senior management was involved and provided far-reaching decisions. 

- Recommendation: Follow the Project Management Plan, keep senior management informed, and update 
plan as necessary. 

(U) Lesson 3 

- Key decisions (at HQ level) concerning acquisition strategy delayed RFP and subsequent award. Timetable 
for award affected ability to conduct source selection evaluation prior to end of fiscal year and funds 
expiration 

- Recommendation. Consider impact of external influences on procurement strategy and develop alternatives 
for streamlining solutions (contracting, legal) 


* * * 


SE^ET * * ‘ 

Recap (U) 


Phase 5 Review: Digital Collection-03 4/20/2004 


Project Management 



- Concurrence □ 

Reviewed project performance 

- Concurrence □ 

Reviewed Lessons Learned 

- Concurrence □ 

Authorized Closeout of the project 


- Authorized 


□ 


Presented an overview of the project accomplishments 



* * * SECRET * * 


1 


V « {key. 01-31-2003) 
1 


i 


DECLASSIFIED BY UC60322LP/PL J/CC 
051 01-2S-2009 




FEDERAL BUREAU QF INVEST IGA ; ;ON 


Precedence: ROUTINE Date: 02/13/2004 

To: Investigative Technology Attn: /> 


From: Investigative Technology 

Electroni c Surveillance Technology Section/TICTU 
Contact: | | 


Approved By: 



Drafted By: 


Aic-^d 

Case ID #: 




Title: DCS-5000 


(Enc) 


b2 

b6 

b7C 

b7E 


b6 

b7C 


Synopsis: In compliance with the Project Management Office {PMO) 

guidelines, the Telecommunicacions Intercept and Technology Unit 
(TICTU) is submitting the Digital Collection Project Plan for FY 
2004. 


Enclosure: FY 2004 Digital Collection Project Plan 

Details: TICTU is submitting the Digital Collection Project Plan 

for FY 2004 . 


Previous to this submission, Title III and Title 50 
digital collection systems were tracked as separate activities. 
In July 2003, during a meeting between TICTU and PMO, an 
agreement was reached that rather than submit separate plans, an 
overall project plan would be provided. Further, in order to 
better track the digital collection project, it was agreed that 
the project would be tracked by fiscal year blocks. 

^_^_^_^^For_additional inf ormation_jolease_^ont££t 

| Project Leader, | | 


b6 

b7C 


F Y_Q4_proj Avpd 



UNCLASSIFIED WHEN SEPARATED FROM CLASSIFIED ENCLOSURES 


* 



UPLOADED 
FEB 2 6 2004 
S .0. J 




LEAD ( s ) : . 

Set Lead 1: (Action) 

INVESTIGATIVE TECHNOLOGY 



In compliance with the PMO guidelines, TICTU is 
submitting the FY 2004 Digital Collection Project Plan. 
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F Y_04_proj . vvpd 



DECLASSIFIED BY UC60322LP/PLJ/CC 
ON 01-28-2009 
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CONCURRED BY:. I 1 


Planning & 

Administration] 

Team Leader 

signature 



Date 



Date 


CONCURRED BY: 
Program Manager 




CONCURRED BY: 
Unit .Chief 


1 1 M i Ok 


Signature 


Date 






2.0 AC QXJI S X TX ON / PROCUREMENT STRATEGY 


2,1 PRODUCT LIFE CYCLE ACQUISITION/PROCUREMENT STRATEGY 


TICTU intends to maximize the use of competitive procurements 
and COTS products in order to obtain products and services that 
provide the best value to the government. With the exception of 

~ ' ~ | which will be terminated upon transition 

to Red Wolf , all contracts currently supporting the program. are 
the result of competitive, COTS acquisitions. 


(U) 


2.1.1 DCS -5000 


■' TICTU awarded an Indefinite Delivery/Indefinite Quantity b7E 
\ IuTQ) Firm Fixed Price (FFP) contract for DCS-5000 collection 
.systems and related engineering support services to Raytheon 
Systems Company in September 2002. The contract includes a 
twelve-month base period of performance and four (4) additional 
twelve-month option periods; ‘the contract ceiling is $75-, 000 , 000 . 
This contract is the result of a competitive procurement that 
required all offerors to submit a candidate system for evaluation 
against FBI r developed functional requirements. This plan covers 
the second option year of this contract. 
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3.0 TECHNICAL APPROACH 


3.1 TECHNICAL MANAGEMENT STRATEGY 

(U) The Project Leader establishes control of the project with 
team members by mutually setting objectives and goals, defining 
•tasks to be done, planning and scheduling the task(s) based on 
.required and available resources, measuring progress and 
performance, and reporting progress to management and field 
offices . 

Project Digital Collection-04 will use management . reviews , 
progress reports, and internal and external communications to 
keep stakeholders abreast of project activities. 





4.1 (U) PRODUCT LIFE CYCLE COST 

(U) The estimated project cost includes a product life cycle .cost 
for a 12 -month period. The breakout of cost estimates is as. 
follows : 

Estimated Total Project Cost (FY03) $34,500/000 

Estimated Total Training Cost: . 300,000 

Estimated Acquisition and Planning Cost: 2,560,000 

Estimated Infrastructure and Support Cost: 2,350,000 

Estimated local Follow-On Production Cost; 18,600,000 

Estimated Total Maintenance Costs: 10,600,000 

Estimated Total Disposal Costs: Included above 

$34,500,000 

b2 
b7E 


Estimated Total PRODUCT Life Cycle Cost: 





Project Digital Collec£ion~04 


* * * secret * * * 

. / v Project Plan January 1, 2 004 



6.3 (tl) PROJECT CONTROL 

(U) The planned, management decision points (Phase Reviews) for 
this project aire identified in Table' The planned phase 

reviews will provide management" with "an opportunity to review 
project progress from a programmatic view point (cost, schedule, 
issues) and an opportunity to provide additional direction to the 
Project Leader. 




Table 6.3-1. Planned Phase Reviews 


' - - PHASE REVIEW,.. 


PLANNED DATE 

Phase 1 
Review 

A Unit-level review to brief the 
Unit Chief on the identified need 
and to receive a "go /no -go" decision 
from the Unit Chief to initiate 
Phase 2/Project Plan preparation 

October 2002 


Phase 2 
Review 

A formal Section- level review to 
brief the Section Chief on the 
Project Plan content and to receive 
a "go/no-go" decision from the 
Section Chief to initiate Phase 
3/work, on the project 

September 2003 

Phase 3 
Review 

A Unit-level review to brief the 
Unit Chief on the cost status, 
schedule status, and programmatic 
issues at the conclusion of the 
design/ development activities 

Not applicable 
(COTS) 

Phase 4 
Review 

A Unit-level review to brief the 
Unit Chief on the cost status, 
schedule status, and programmatic 
issues at the conclusion of the test 
and evaluation activities 

Not applicable 
(COTS) 

Phase 5 
Review 

A formal Section- level review to 
brief the Section Chief on the 
Project Closeout Report content and 
to receive authorization from the 
' Section Chief to officially end the 
project 

March 2005 



b2 
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6.4 (U) PROJECT ORGANIZATIONAL STRUCT ORE ANTi -W P'i. ATIOi%5>iIl PS 

.A . 

(U) The table below identifies the key project participants, 
including the key decision authorities, developers, and other 
stakeholders who have a vested interest in this project. 


Table" 6.^-1/ Key Project Participants 



KEY DECISION 
AUTHORITIES: 


PROJECT TEAM 
STAFF : 

(Government) 


DEVELOPER (S) : 
Contractor (s) 


SECTION CHIEF: 


Michael 
Clifford, Jr. 


UNIT CHIEF: 


PROJECT LEADER 


CONTRACTING 
OFFICER'S 
TECHNICAL REP: 


PLANNING & ADMIN 
TM LDR : 


INSTALLATION & 
MAINTENANCE TM: 


CONTRACTOR : 



*jr* 


► Requisition 
Approval 

► Phase 2 
(Project 
Initiation) 

► Phase 5 
(Project 
Closeout) 


► Control Product 
Approval 

► Project Leader 
Assignment 


► Project Team Mgmt 

► Control Product 
Prep 

► Project Reporting - 


► Technology Mgmt 

► Contract Mgmt 


► Deployment 
Planning 

► Support 
Coordination 


► System Deployment 

► Technical Support 


► System Production 
►System Support 



* * * SE 
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REPRESENTATIVE 


OTHER 

STAKEHOLDERS : 


Criminal 

Investigation 

Division 


Counterintelligence 

Division 


Counterterrorism 

Division 



► Represent- 
End -User 
Communi ty 

► Review/Concur on 
Control Products 

► Keep User 
Community. « 
informed 

progress;/ features 
of the project 


► Provide HQ level 
policy, guidance, 
and funding 


► Provide HQ level 
policy, guidance, 
and funding 


► Provide HQ level 
policy, guidance, 
and funding 


to 2 
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~ . • Append B 


***SEC&ET*** 


(Rev. 01*31-2003) 


DECLASSIFIED BY UC60322LP/PL J/CC 
ON 01-28-2009 

f 5 ' 



FEDERAL BUREAU OF INVESTIGATION 



; - rrecsdffsnse : ROUTINE 

To : Opera tionaJ Technology 


Attn: J 


b2 

Date: 06/22/20.06 • ■ 

( Enc ) b 7 C 
b7E 



Synopsis: 'In compliance with the Project Management Office (PMO) 

guidelines, the Telecommunications Intercept and 
Collection Technology Unit (TICTU) is submitting the 
Digital Collection Project Closeout Report (PCR) for approval. 

Enclosure (s) : FY 2004 Digital Collection PCR 

Details: TICTU is submitting the Digital Collection PCR for 

FY 2004 for approval. TICTU requests that the PMO review the 
document and schedule a Phase 5 Review at the earliest 
opportunity. 



i For additional information please contact 

I b6 


Program Manager ; 



■ b7C 


FYG4_ProjectPCR lo PMO.wpd 



UNCLASSIFIED WHEN SEPARATED FROM CLASSIFIED ENCLOSURES 

IfPLSA&EB 


JUl 1 3 2005 



SE^E' 


TO: Operational Technology From: Opera ti cnal' Technology 


Re : 


06/22/2005 


b2 

b7E 


LEAD(s) : 

Set: Lead 1: (Action) 


OPERATIONAL TECHNOLOGY 



In compliance with the PMO guidelines, TICTU is 
. submitting the FY 2004 Digital Collection PCR. 




♦♦ 


iLfincI 

(Enc) 
(Enc) 


b2 

b6 

b7C 

b7E 



FY04_ProjectPCR to PMO.wpd 


2 



DECLASSIFIED BY UC60322LP/PL J /CC 
ON 01-28-2009 


* * * * s 


E^RET * 


* * 


Digital Collection-’ 04 


Project Closeout Report 

( PCR) 


Project File 



July 9, 2005 


Operational Technology Division 
Electronic Surveillance Technology Section 
Telecommunications Intercept and Collection Technology Unit 


PCR Vers 1 . 1 
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Project Plan 



ified b 


assify on: 


June 1, 2003 



APPROVAL 


CONCURRED BY: L 

Engineering & 
Technology Manager 


Signature 



Date 


CONCURRED BY: 


Planning & 

Administratioi 
Team Leader 

Signature 



Date 


CONCURRED BY: 

Program Manager 


1 


Signature 
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CONCURRED BY; 

Group Leader 



Date 


APPROVED BY: 

Unit Chief 



Signature 


7 i ijtrt 

Date 


Digital Collection Project Plan 





4.0 technical approach 


4.1 TECHNICAL MANAGEMENT STRATEGY 

(U) The Project Leader establishes control of the project with 
team members by mutually setting objectives and goals, defining 
tasks to be done, planning and scheduling the task(s) based on 
required and available resources, measuring progress and 
performance and reporting progress to management and field 
offices. 





DECLASSIFIED BY TJC60322LP/PL J/CC 
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(Rev. 08-28-2000) 


. FEDERAL BUREAU .0: 


ikl\ (COTIO A T» O. \ 


Precedence: ROUTINE Date: 10/14/2004 

' To: Investigative Technology 

From: Investigative Technology 

Strategic Resources Uni h /Pro -j act Management Office 

Contact: | I 



b6 

b7C 


b2 

b7E 


Title: DCS-5000 

PROJECT MANAGEMENT OFFICE (PMO) 


Synopsis: Project Digital Collection 03 . A Phase Five Review 
Meeting was held on 10/06/2004 at the Engineering Research 
Facility- The project information is captured within the 
referenced enclosures for the project. 

Enclosure: Project Management Office Project Closeout Briefing 
Summary, PAMS Project Snapshot Report and Project History Report 


Details: The Phase Five Review for Project Digital Collection 03 
was held at the ...Enain^^^ Facility on 10/06/2004. 

j | of the Telecommunication 

Intercept arid" ""CoTIection Technology Unit provided an overview and 
status of current activities for the project. Assistant Director b/C 
Kerry Haynes, Sections Chiefs, Mr. Anthony DiClemente and Mr. 

Roger Shields a nd individuals repre senting their resnerHyp - 

Section Chiefs: ! I for TOS, | | for 

ESTS, approved the closeout of the project. 


Key information and decisions from the presentation are 
capture d within the Pro ject Closeout Briefing Summary enclosure. 
Contact l H or the Project Leader if additional 

information is required. 


CC:j 




ITICTU 
TICTU 
TICTU 
TICTU 
'TICTU 

SRU/PMO 


^UC-AflFO 
OCT 1 


b2 

b6 

b7C 

b7E 






DATE: 01-26-2010 

CLASSIFIED BY UC6G322LP/PLJ/CC 

PE AS OF: i. 4 (c) 

DECIASSTgjT ON: 01-26-2035 


From: 

Sent: 

To: 


Subject: 

Importance: 

Follow Up Flag: 
Flag Status: 


(OTP) (FBI) 



t 


](OTD) (CON) 


ALL INFORMATION CONTAINED 
HEREIN IS UNCLASSIFIED EXCEF 
I0HERE SHOWN OTHERWISE 

b6 
b7C 


[ 


Wednesday, October 04, ?pft6 12:11 PM 




)ctober 04, 2£ 
IOTP) (FBlI 


I 






"l( OTD) (FBI)f 

IQT DWCONX 


Inm^ rFRnl 


iQIQKCflSil . - 

IIqtqupM 


l 


oim (Lem 


l 




inTmrcoNp 





(OTD) pul 
(CON),: 




[ 


ToTD) (FBI)[ 

|OTP)(CON)| 


lfOTm fFBIj j 

imnitEBiS 






(OTD) 

ZlZSm 


lQTPi(C0N^ 


^(OTO) (FB]1 
l(OTD'i (CQN)I 


tomcjaM 






TrrmT 


(OTD) fCON):l 




Mlinia:jK 






n 


DN);| 




loTD) fFBll 




(OTD)(CO N) l 

tlTD) fCON):l 




FW: Immediate action required! 
High 


imwm 


JOTD)(CON)[ 


IotdT 


Read 

Flagged 



UNCLASSIFIED 
NQf^RECbRD 


Please see 



I 




-mail below. Thanks. 


b2 

b6 

b7C 


— Original M 

From: 

Sent: 

To: 

Subject: 

Importance: 


ess| 


Qf» 


IOTP) (FBI) 


, WerinPiriav flrtnhpc 04, 2006 11:02 AM 
I I OTD1 (CON) 


Immediate action required! 
High 


b6 

b7C 


~UNCLASSIFi&B^ 

NON-fe^DRD~ 


please forward to the Unit. 


Ail, 


In an effort to answer a FOIA request, ! am requesting that aN TICTU employees and contractors immediately do a word 
search of their e-mail system (active and archived records) for the term "DCS-3000 n and "DCS 3Q QQ" and " DCSSQOCT 
(variations of the same term), if a document or e-mail is located print it and bring the hard copy tc j [ for compilation. 


need this accomplished ASAP. If there Is a negative response - 1 need that also. 


b6 

b7C 


i 




Thanks- 


SE 



Chief, Telecommunications Intercept & Collection Technology Unit 
Electronic Surveillance Technology Section 
Operational Tec hnology Division 




OTD) (FBI 



i |(OTD) (FBI) 

Ti' ^fl6 8:07 AM 

[(OTD) (FBI) 

FW: DCS-3000 redundancy 




rta aw *ia3 



b2 

b6 

b7C 


b6 

b7C 


b2 

b6 

b7C 



I have noted the contact changes, as 


s 


b6 

b7C 

b4 


i 


i 














From: 

Sent: 

To: 

Subject: 


I (CON) 

Thursday 8:06 AM 

I f OTP) (FBI) 

RE: DCS-3000 redundancy 


b6 

b7C 




Please be advised that I am 
retired as am I, but working fo 

nrininal Meccano 

From: I 

Sent: , TlififidflV. July 75 

To: I 



and not 



have noted the contact changes, as 


Subject: FW: D 

UNCLASSIFIED 

NONafttsidoRD" 


|(FBI) 
10:30 AM 
(CON) 


redundancy 


b6 

b7C 

b4 


More stuff for you 


Original 

From: 

Sent: 

To: j 

Subject: 


rOTD) (FBI) 

Friday. July 71. ?006 1:25 PM 

I (FBI) 

DCS-3000 redundancy 


b6 

b7C 


lSSIFJ 


WESSEmMSEMt mill 





NCLASSIFIED 








HFIED 


From: 

Sent: 

To: 

Subject: 





|{OTD) (FBI) 

Frirtav Ml21 2QQS-L25 PM 

](FBI) 

DCS-3000 redundancy 




(OTD) (FBI) 


Subject: 


;OTD) (FBI)I 



Hi all, 


b7C 

■b7E 




bl b2 
b4 
b6 
b7C 
bl b7E 


Sf anyone has any questions about this, please give me a call, 
thanks! 



UNCLASSIFIED 


b2 

b6 

b7C 




DATE: 01-26-2010 

CLASSIFIED BY UC60322LP/PL J/CC 

REAS OF: 1.4 (c) 


ALL IFFORKATIOW CONTAINED 
HEREIN IS UNCLASSIFIED EXCEPT 
WHERE SHOWN OTHERWISE 


1 

DECLASSIFY OH: 01-26-2035 

(OTD) (FBI) 

From: 

i 

loTD) (CON) 


Sent; 
To: 


Subject: 

Importance: 

Follow Up Flag; 
Flag Status: 


■ yiterinasriav October 04, 2 006 1?11 PM 
[ hnrrw /Pcrni 




kip} fFBIlf 

irfYr j» rr.nnvll 


1/OTm ,'FP.nf 




1 tOTD) 


[ 


l(OTOHFBI):l _ l(OTP)(CON)I— , If Aft) 

'CONV» IfOTDHCQNd IHTnUFRlvl 


[ 






om (com 




RifiiffiHan 




rrairt! 


[(•unTriWijn 



hi id 

HlHilTidiTn 




mnn&ynrzzz 

lOTDVCQNVr 




mini rctm 


[ 






rraissireijra 


LqtEIIFBI) 

I fOTH' fFRl'i 



T o p) fCONlI 
IroTDi rcojjvl . 


MiiTTjd;!n 




FW: Immediate action required! 
High 


j(OTDHFBI) 


J(OTD)(CON};[ 


fPTPKCPN);! 

IfiTm rr.nMM 


JOTD) 


b6 

b7C 


Read 

Flagged 



Please see 



[ 


— Original Mes sage — 

From: 1 

Sent: 

To: 

Subject: 

Importance: High 

^! ?N€lASSJPtg6 ^ 


-mail below. Thanks. 


QTD/ESTS/TICTU 


b2 

b6 

b7C 


l(OTD) (FBI) 


Wednesday, Octobe r 04, 2006 11:02 AM 
I [ (OTP) (CON) 

immediate acrion required! 


o 

All, 


lease forward to the Unit 


b6 

b7C 


In an effort to answer a FOIA request, I am requesting that all TICTU employees and contractors immediately do a word 
search of their e-mail system (active and archived records) for the term ‘’DCS-300CT and "DCS 30fln" ^0^^0033000" 
(variations of the same term), if a document or e-mail is located print it and bring the hard copy t q | for compilation. 

I need this accomplished ASAP. If there is a negative response - 1 need that also. 


l 









SSKRET 


Thanks 


/ \ 


Chief, Telecommunications Intercept & Collection Technology Unit 
Electronic Surveillance Technology Section 
Operational Technology P ivJeion 


b2 

b6 

b7C 


UNCLASSIFIED 



From: 

Sent: 

To: 

Subject: 


(OTP) (FBI) 


(OTD) (FBI) 


Friday September IS 2006 9:31 AM 
i ltOTDHFBI) 

R E : Re: DCS 5005 


U>CJ-ASStflED 

NON^ft6CORD~ 


FY! those went out Tuesday afternoon 



— Original 

From: 

Sent: 

To: 

Subject: 


Message-- 


c: 

5 




hW: Re: 3OT 


](OTD) {FBI) 

J 12, 200B 1:42 PM 
OTD) (FBI) 


•QNCLASS1HEP 

NON-REfeoaiT 





you ship 


Coulc 


for me. 


- Thankc 


t 


— Original Message — 





From: 

Sent: 

To: 

Subject: 


RE: Re: DCS 3000 


If FBn 

■ 12, 2006 11:55 AM 
(OTD) (FBI) 


r-REC 


Great, no we could install them. We would need three. Thanks a lot 

Ori ginal Message— 

From: I "“""l fOTP) fFBI) 

Sent: TfPcHaw C^mhprn 7nnfi 1 Hvl7 AM 

To: | l(FBI) 

Subject: RE: Re: DCS 3000 










From: 

Sent: 

To: 

Subject: 


k OTD) (FBI) 

ThiipsHav .Inlv 77 ?Dnfi 8:07 AM 

l (OTD) (FBI) 

FW: DCS-3000 redundancy 


b6 

b7C 


CLASSI 


ET I_. 

TICTU 

Office: 

CellC 

Paqer: 


b2 

b6 

b7C 


Original Me 

From: 

Sent: 

To: 

Subject: 


| (CON) 

Ji-2006 8:06 AM 
l(OTD) (FBI) 
redundancy 


Please be advised that I ant 
retired as ami, but working for 

- — Original Message — 

From: I 

Stent: Tuesday, July 25. 

To: I 


and not 


I have noted the contact changes, as 


I (FBI) 

» 10:30 AM 
l(CON) 


Subject: 


FW: DCS-3000 redundancy 


ILASSIQ 


More stuff for you 


— Original Message — 

From: I" l (OTD) (FBI) 

sent: PM 

To: I I TFBI) 

Subject: DCS-3000 redundancy 



b6 

b7C 

b4 


b6 

b7C 


We here in the TICT 








More stuff for you 


e 


-—-Original Message — 

From: 

Sent 
To: 

Subject: 


](OTt» {FBI} 


Friday. July 21. 2006 1:25 PM 

I (FBI) 


DCS-30QG redundancy 

UNCLASSIFIED 


b6 

b7C 


NON-RECORD 


We here in the TiCTul tab are beginning an initiative tcf 


b2 

b4 

b7E 


3 





b2 

b4 

b6 

b7C 

b7E 



i 


b2 

b6 

b7C 







J(FBI) 

06 1:10 PM 
(OTD) (FBI) 


From: 

Sent; 

To; 

Subject: 


i 

^ Tuesday Mav 09. 2( 



] Whatever you folks 


designed and set up will be appreciated here. 

I will be out of the office fro m 5/1 3-27/ 06, so if my presence is needed during that window let me know so I can get 
someone to fill in . Thanks, f i ^ 2 


— Original Message- — 

From: I 

Sent: Thursday, Mav 047 

To: | 

Subject: " * 


j(OTD) (FBI) 
2006 1:02 PM 


iFBI) 


J 


b4 

b6 

b7C 

b7E 


UNCLASSIFIED 

NO?feRgCORD~ 


| s not going to be used it is up to you as to whether or not to install if.~~We have one programmed up and as a 
just in case kind of thing it doesn't take up much space and can save some heartache down the toad. 


;s 


i 



Qrio jnal Messao 

From: 

Sent: 

To: 

Subject; 




i 




(FBI) 
TO?2:23 PM 
OTO) (FBI) 


OWCLASSIEietf 

NONJlfe6QRD 


b2 

b4 

b6 

b7C 

b7E 







But, well do whatever you’ve worked out Let me know. 



— "QhSiral M essage- 

From: | ' — 


FBI) 


8 






And if so, will this terminate in a new separate router? Let me know when you get 


a moment. Thanks! 




UNCLASSIFIED 


J(OTD) (FBI) 


From: 

Sent: 

To: 

Subject: 


[ 


loTD) 


(FBI) 

-Thumriau May fid &Q2 PM 

(FBI) 





b2 

b4 

b6 

b7C 

b7E 


b6 

b7C 
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This is a generic DCS-5000 contingency plan that should be used as a basis for the creation of site- 
specific DCS-500G contingency plans. Each field office or organization with a DCS-5000 system must 
create and implement a site-specific plan to meet their needs. 

Comprehensive system security contingency plans for operating locations employing the DCS-5000 
should be written and coordinated to cover the loss of equipment, personnel and data due to unforeseen 
calamities at FBI field office locations such as fire, earthquake, flood, wind, etc. These plans should be 
tailored to match the environments within which each individual DCS-5000 operates. For instance, a 
field office in a desert or mountainous environment may not need to address a potential flood threat but 
may emphasize the potential damage from wind or avalanche. In addition, these plans should clearly 
define individual roles and responsibilities for each type of emergency and should include recovery 
strategies for those emergency situations. Instructions should be included for implementing each 
recovery strategy at each of the following response level: 

• Emergency Response - The immediate steps to be taken by each participant to protect life, 
property and reduce the negative impact of the emergency situation. 

• Interim Operations - The steps to be taken to initiate interim procedures. These procedures 
will place the systems into a temporary restricted operational status, 

• Recovery Actions - The procedures to be used to restore the system to full operation. 

A contingency plan may incorporate recovery plans for different contingencies within it, or separate 
recovery plans that address each contingency individually may be attached to it. Regardless of the 
approach, these plans must be detailed but, at the same time, easy to follow so all personnel involved with 
the system know what steps to take in the event a disaster strikes. A typical contingency plan should 
include the following; 

• A general mission description of the system 

• Key organizations involved with system recovery 

• Key personnel (i.e., points of contact) involved with system recovery 

• A brief description of the types of calamities that might befall the system 

• Notification procedures that clearly describe who is to be notified and when, and what 
alternative actions to take when key people cannot be contacted 

• Detailed descriptions of emergency response activities (i.e., actions that must be taken 
immediately after a calamity) based on the type of calamity and on the severity of the 
damage suffered 

• Detailed descriptions of actions that must be taken to resume system operations at an interim 
level based on the type of calamity and on the severity of the damage suffered 

• Detailed descriptions of actions that must be taken to resume normal system operation based 
on the type of calamity and on the severity of the damage suffered 

• Emergency response checklist appendices (optional) 
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1.0 INTRODUCTION (U) 

Prior to receiving access to DCS-5000, all users shall be required to review the DCS-5000 Rules 
of Behavior. These rules of behavior apply to all users of DCS-5000. By signing this 
document, the user acknowledges that he or she understands and accepts these responsibilities 
and will make every effort to comply with them. Copies of these rules of behavior must be 
provided to all new users of DCS-5000 before they are granted system access. 

Security is important for everyone. All users of DCS-5000 resources should be aware that the 
system as a whole contains valuable and sometimes sensitive government information, which 
must be protected to prevent disclosure, unauthorized changes, and loss. Each part of the system 
can introduce vulnerabilities to the whole, so protection must be consistent in order to be 
effective. 

1 . Purpose (U) 

The purpose of the DCS-5000 Rules of Behavior is to implement baseline security requirements for all 
program managers (PM), system administrators (SA), information systems security officers (ISSO), and 
users of the system. This document states individual security responsibilities as users of the system. 

2. Compliance 

The DCS-5000 Rules of Behavior are based on the principles described in the Computer Security 
Act of 1987 to protect sensitive information. More specific user responsibilities are set forth in 
the FBI Manual of Investigative Operations and Guidelines (MIOG) and in other regulatory 
documents such as the Code of Ethics for Government Employees, Office of Personnel 
Management (OPM) regulations, Office of Management and Budget (OMB) regulations, and the 
Standard of Conduct for Federal Employees. The DCS-5000 Rules of Behavior carry the same 
responsibility for compliance as these official documents. Users who do not comply with these 
rules are subject to penalties that can be imposed under existing policy and regulations, including 
official, written reprimands, suspension of system privileges, temporary suspension from duty, 
removal from current position, termination of employment, and even criminal prosecution. The 
FBI will enforce the use of penalties against any user who willfully violates any DCS-5000 or 
federal system security (and related) policy. 

3. User Information and Contacts (U) 

Your supervisor or System Administrator should furnish you with the following information 
when you are granted authorized user privileges on DCS-5000. After that, it is your 
responsibility to stay up-to-date on the key personnel and phone numbers. You should know: 

• Your unique personal identifier (user ID) on the system; your user ID will be used to 
control your access to parts of the system and for auditing your activities on the system . 

• Your password on the system; the system will ask for your password to authenticate your 
identity, before granting you access. You may get a temporary password; if you do, the 
system will ask you for a new one the first time you log on. You should also be notified 

of any requirements for password length, complexity, duration, etc. Never write your 
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password down. 

Your access privileges; your access privileges may be limited to a specific list of file 
areas, programs, and activities. 

You should know who the following individuals are and how to contact them: 


Contact: 

Description of duties: 

Pro gram Manager 

Program Manager for DCS-5000 
| activities 

1 

Information Systems Security 
Officer (ISSO) 

Ensures that the information system 
is implemented with appropriate 
security features and meets the 
minimum security requirements. 


DCS-5000 Senior System 
Technical Reoresentative 

Serves as POC for all DCS-5000 
j technical issues. 


User Representative j Serves as user advocate for this 1 

i 

| system | 


Telephone: 


Table 1: Contacts 


4. The DCS-5000 Environment (U) 

General Information 

All DC S-5000 u sers must read and abide by these rules of behavior. 

All FBI 1 I systems are for official business only. System users have no expectation of 
privacy while using these resources. 

Sensitive and Classified Data Considerations 

SECRET Classified national security information will be processed on any DCS-5000. 

All DCS-5000 output that contains SECRET information will be so marked or labeled by the 
user who generated the material, and then stored or transmitted with appropriate protection. The 
classification SECRET will be marked, stamped, or permanently affixed to the top and bottom of 
the outside of the front and back covers (if any), on the title page and on all pages of documents 
or information requiring such control. All removable media containing Classified information 
will be similarly labeled and stored in approved security containers (e.g., GSA approved safes). 

SECRET documents that are no longer needed must be shredded. 
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6.2 Things You May Not Change (U) 



7. Unauthorized Activities (U) 

All DCS-5000 users are held strictly accountable for their actions while on the system. User 

activity will be monitored and system activity audited to detect unauthorized behavior. 

Unauthorized activity may result in a warning, reprimand, loss of access, formal disciplinary 

action (including dismissal), or even legal action (such as a fine or imprisonment). 

Unauthorized activities include; 

• Entering unauthorized, inaccurate, or false information. Do not delete or manipulate 
information inappropriately. 

• Using data for which you have not been granted authorization. Do not explore data or IS 
capabilities that are not related to your job or attempt to access information which you do 
not have authority to access. If you have any questions about the limits of your 
authorization, consult your supervisor for clarification. 

• Retrieving information for someone who does not have access to it himself/herself, 
except as specifically authorized in your job description, or by your supervisor. 

• Violating copyright and site licenses of proprietary software. This may happen when 
multiple copies of licensed software are installed, as well as when unlicensed software is 
installed, or licensed software is used on personally owned systems. 

• Installing unauthorized software. Do not install outside software (including other agency 
software, shareware, freeware, personally purchased, or pirated software) on DCS-5000. 
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* Leaving your computer logged into the system when not being used. Log-off your 

workstation whenever you are away from the immediate work area for the day. When 
leaving your immediate work area for a short period of time (i.e., on-site meetings, lunch, 
etc.) enable the screen saver function with password protection. 


8. Your Role in Protecting the System (U) 

Ensure that any data that is visible on the workstation monitor screen cannot be viewed b 



• The user wi ll ensure that the screen saver activates before leaving the workstation 
unattended.!” ~~ 



Ensure printouts are retrieved as soon as possible. Output should not be left unattended for any 
longer than is necessary. 


Protect your equipment (workstation, diskettes, etc.) from physical damage. Ensure that your 
workstation is clean, ventilated, and located in a place where it is not likely to be bumped or 
knocked over. Keep food and drinks where they won't get spilled on the equipment. 

Safeguard DCS-5000 resources against waste, loss, abuse, unauthorized use, and 
mi sappropri ati on. 

Scan all disks for viruses before use, and do not introduce media received from external sources 
without prior approval. Even with such approval, virus scan the media first before opening any 
files. Discontinue use of any DCS-5000 resources that show indications of being infected by a 
virus and immediately report any incidents to the ISSO. 

Report any security incidents or suspected security incidents, including computer virus 
infections, to your ISSO. The term "security incident" includes any event that may result in the 
unauthorized or inadvertent disclosure of information to unauthorized individuals, or results in 
unauthorized access, modification or destruction of system data, loss of system processing 
capability, or loss or theft of any computer system media. 

Challenge any unauthorized personnel in your work area. 
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To meet minimal accreditation standards, all DCS-5000 systems must have rules of behavior in 
place. It is paramount that the ISSO, System Administrator, and all users read and follow these 
rules of behavior. A generic accountability sheet is shown in the back of this document. 

These rules of behavior apply to all supervisors of users of DCS-5000. 

9. User Supervisors 

9. 1 Account Creation Responsibilities (U) 

First line supervisors are responsible for requesting access to DCS-5000 for new users and the 
granting of new access privileges that may be required by users under his/her supervision. 

9.2 Account Termination Responsibilities (U) 

First line supervisors are responsible for directing the removal of DCS-5000 access for all 
persons under their supervision upon transfer of the user, termination of service or when there is 
no longer any need for that user to access DCS-5000 resources. The supervisors should: 

• Notify the ISSO and System Administrator upon the departure or transfer of all assigned 
staff (government employees, contractors, etc.). 

• Ensure continued availability of information when an employee terminates. Transfer 
employee files to another authorized user when needed, delete unnecessary files, and get 
passwords to encrypted files. 

• Counsel terminating employees on nondisclosure of sensitive information. 

• Terminate access to information and computer systems immediately in the event of 
unfriendly separation. Physically remove an employee when there is likelihood of 
sabotage. 

9.3 Account Parameters (U) 

First line supervisors may request the establishment of shared directories. When a shared directory is 
established, the following rules apply. The first line supervisor is responsible for designating those users 
who will be granted access to such directories and the permissions to be assigned to each user. 

• An owner will be assigned to manage each shared directory. 

• The first line supervisor is responsible for e nsuring that owners review and verify the. list 

of authorized users for each shared director ^ i The shared directory 

owner will request termination of access for any user no longer requiring access. 

9.4 Account Verification/Validation (U) 

Supervisors will respond to the ISSO’s annual request for review of user privileges. 

9.5 Awareness Responsibilities (U) 


***STTCTWe-¥* 


** 
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Supervisors will ensure that all DCS-5000 users belonging to, or performing work within, their 
organization have current knowledge of these rules of behavior, the required clearance, and a 
need-to-know for ail information they are authorized to access. 

9.6 Official Use (U) 

Supervisors will ensure that the system is not used for any unlawful, immoral or unethical 
activities. 

9.7 Incident Reporting (U) 

Supervisors are responsible for ensuring that security incidents are promptly reported to the 
ISSO. 

These rules of behavior apply to all administrators for DCS-5000. 

10. Administrators 

10.1 System Administrators 

10.1.1 Responsibilities (U) 

In addition to compliance with the Rules of Behavior that apply to all users, DCS-5000 System 
Administrators are responsible for: 

• Verifying the adequacy and authenticity of a new user’s request before authorizing the 
creation of his/her new user account. Contact ISSO for any specific security questions 
when creating an account. 

• Ensuring software has been approved by the DCS-5000 Configuration Control Board 
and/or designated DCS-5000 personnel tasked with reviewing all changes prior to 
implementation. 

• Becoming thoroughly familiar with and complying in all respects with the requirements 
of DCS-5000 Security Policy (DCS-5000 SSP refers) and these rules of behavior. 

• Supporting and providing technical assistance to supervisors and the ISSO in the 
performance of their duties and responsibilities relating to the security of DCS-5000. 

• Managing the creation and deletion of user accounts and the granting and revocation of 
system privileges. 

• Maintaining and keeping current all system documentation 

• Altering the configuration of DCS-5000 hardware or software only in accordance with 
the requirements of the DCS-5000 Configuration Control Board and/or designated DCS- 
5000 personnel tasked with reviewing all system changes prior to implementation. 

• Initiatin g j review of any advanced access privileges they have granted, to verify 

that personnel still need access. System Administrators will generate lists of personnel 
who have advanced privileges and send them to the appropriate supervisors for review 


* ** '' SECRET AA * 






and written response. If a supervisor determines that some personnel no longer need 
advanced privileges, the System Administrator will terminate their access. 
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10.2 ISSO(IJ) 

The IS SO is responsible for: 

• Maintaining a document library containing current copies of all security plans, policies, 
regulations, certification and accreditation documentation, and procedures applicable to 
the DCS-5000. 

• Becoming thoroughly familiar with the DCS-5000 SSP, DOJ 2640. 2d policy, FBI MIOG 
requirements and basic best practice security procedures and standard operating 
procedures. 

• Ensuring the implementation of the DCS-5000 SSP and its development, operation and 
maintenance in accordance with the requirements of applicable FBI security policies and 
all other applicable security policies, regulations and procedures. 

• Monitoring the administration of the DCS-5000, providing guidance to System 
Administrators and ensuring their compliance with all such security plans, policies, 
regulations and procedures. 

• Ensuring that physical access control procedures and measures are properly implemented 
at the sites for which they are responsible. 

• Implementing and ensuring compliance with the requirements of the security incident 
reporting program. 

• Providing advice and assistance to managers and supervisors in performing their duties in 
relation to the DCS-5000 security program. 




• Assisting site managers in the selection and use of safeguards that reduce the risk to 
systems and facilities from malicious software and intrusions. 

• Assuring that the SSP is reviewed regularly, and assisting in the re-certification and 
accreditation of the system according to the requirements of the DCS-5000 SSP. 

1 1 . INFORMATION SYSTEMS SECURITY MONITORING (U) 

This FBI system, the DCS-5000, is for the sole use of authorized users for official business only. You 
have no expectation of privacy in its use. The DCS-5000 may be monitored routinely for indication of any 
unauthorized or malicious activity. 

12. MONITORING NOTICES (U) 

The following warning notices will be used as indicated to inform users of FBI information 
systems that such use is subject to information systems security monitoring: 

12.1 Computer Log-on Banner (U) 

* * * * * WARNING * * * * * 

This FBI system is for the sole use of authorized users for official business only. You have no expectation 
of privacy in its use. To protect the system from unauthorized use and to insure that the system is 
functioning properly, individuals using this computer system are subject to having all of their activities on 
this system monitored and recorded by system personnel. Anyone using this system expressly consents to 
such monitoring and is advised that if such monitoring reveals evidence of possible abuse or criminal 

activity, system personnel may provide the results of such monitoring to the appropriate officials. 

* * * * * WARNING ***** ’ “ 

OK 

13. SYSTEM ADMINISTRATORS 

13.1 Objective (U) 

The main goals of the System Administrator are to keep the DCS-5000 operational and secure. 
The following tasks are essential in accomplishing these goals: 

• Ensure that the operating system for the DCS-5000 is configured properly and that the 
security features appropriate to the intended level of system operation are properly set. 
Such settings should be periodically reviewed; such reviews will not involve looking at 
information or data contained in the files of individual users other than system 
configuration files. 


□ 
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If a System Administrator suspects an unauthorized user is attempting to access the DCS-5000, 
the System Administrator is authorized to take the actions necessary to verify and limit the 
penetration attempt from an unauthorized user. Once verified, the System Administrator will 
notify the 1SSO. The SAC will contact C1D. The System Administrator may make system 
backups of appropriate log, history files, and user directories. Once the System Administrator 
has determined that the anomaly is in fact an unauthorized intrusion, and CID have been notified 



1 3.2 Restrictions on System Administrators in the Normal Performance of Their 
Duties (U) 

The System Administrator does not have unlimited authority in operating the DCS-5000. While 
security of the system is an important component of the job, there are restrictions on actions that 
a System Administrator may take in accomplishing the security function: 




13.4 Assistance To Law Enforcement And Counterintelligence (U) 

The System Administrator is authorized to provide technical assistance as requested by the 
investigating agent when part of a properly authorized investigation. In all cases, the ISSO must 
be notified. 





13. 5 DCS-5000 Privileged User Rules of Behavior Acknowledgement Form (U) 

As the privileged or super user of the DCS-5000, 1 acknowledge my responsibility to conform to 
the following requirements and conditions as directed by Department of Justice Order (DOJ) 
2640.2D (Information Technology Security), DOJ-TS-OOl (DOJ Access Control Standards 
Password Management), Manual of Investigative Operations Guidelines Part 2, Section 26 
(Classified National Security Information and Material) & 35 (FBI Automated Data Processing 
and Telecommunications Security Policy), the DCS-5000 System Security Plan (SSP), and local 
security operating procedures (SOP). These conditions are established for and apply to all AlSs 
connected to DCS-5000. 

1 . 1 understand that failure to sign this acknowledgment will result in denial of access to the 
DCS-5000. 

2. 1 understand the need to protect the Root or Admin password at the highest level of data it 
secures. I will not share the Root or Admin user password and/or account with any unauthorized 
persons. 

3. 1 understand I am responsible for all Root/ Admin actions taken under my account. I will not 
attempt to "hack" the network. 1 will not attempt to gain access to data for which I am not 
specifically authorized, such as users’ files in their home directories. I will only use my special 
accesses or privileges to perform authorized tasks or mission-related functions on DCS-5000. 

4. 1 understand my responsibility to report any/all IS or network computer security problems to 
the: Information System Security Officer (IS SO) and the Information System Security Manager 
(ISSM). 

5. 1 acknowledge my responsibility to use the network only for official government business. I 
understand I am required to report the discoveiy of any violations of this rule to the DCS-5000 
ISSO. 

6. 1 will not enroll any user to the network or any connected system that is not approved by their 
supervisor and cleared to at least the TOP SECRET level. 

7. 1 understand that the network operates at the SECRET classification level. I have all 
clearances necessary for access to the network, and will not introduce or process data that the 
network is not specifically designed to handle as specified by DCS-5000 ISSO. 
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8. 1 understand my responsibility to appropriately protect all output generated under my account, 
to include printed output, magnetic tapes, floppy disks, and downloaded hard disk files. I 
understand that I am required to ensure all hard copy output and magnetic media is properly 
labeled as required by the regulations listed above. 

9. 1 understand my responsibility to not introduce any software or hardware not acquired through 
official channels (DCS-5000 Configuration Control Board). I also acknowledge my 
responsibility to virus-scan all official and authorized software before introducing it into DCS- 
5000. 

10. 1 acknowledge that all DCS-5000 equipment and related items are for the communication, 
transmission, processing, and storage of U.S. Government information only. These systems and 
equipment are subject to monitoring to ensure proper functioning, to protect against improper or 
unauthorized use or access, and to verify the presence or performance of applicable security 
features and procedures, and for like purposes. Such monitoring may result in the acquisition, 
recording, and analysis of all data being communicated, transmitted, processed, or stored in this 
system by any user. If monitoring reveals possible evidence of criminal activity, such evidence 
may be provided to law enforcement personnel. In using this system, I expressly consent to such 
monitoring. 

1 1 . 1 will not violate any U.S. statute, and I understand that I am bound by the directives of the 
President of the United States, the Attorney General, Director of Central Intelligence (DCI), the 
Director FBI, Rules of Behavior, and local Standard Operating Procedures (SOP). I further 
understand that I cannot be ordered by any lesser authority to violate either the letter or the spirit 
of any U.S. statute, Executive Order, directive from the A6 DOJ, DCI, Director FBI, or local 
SOP. I bear sole responsibility and liability for any such violation. Suggested reading for this 
includes the Privacy Act of 1974, National Computer Security Act of 1987, Executive Order 
12958 (Classified National Security Information), Department of Justice Order 2640.2D 
(Information Technology Security), DOJ-TS-0O1 (DOJ Access Control Standards Password 
Management), and Manual of Investigative Operations Guidelines Part 2, Section 26 (Classified 
National Security Information and Material) & 35 (FBI Automated Data Processing and 
Telecommunications Security Policy). 

12. 1 acknowledge my responsibility to conform to these requirements and conditions when using 
a DCS-5000 System. I also acknowledge that failure to comply with these requirements and 
conditions may constitute a security violation resulting in denial of access to the DCS-5000 
System. Additionally, such violations will be reported to the appropriate authorities for further 
action as deemed appropriate. 

13.1 have completed the required course(s) and secure awareness training prior to receiving 
access to DCS-5000. 

14. A copy of this agreement will be kept on file with the DCS-5000 ISSO as part of my security 
agreement. 



* **9 ECRE T* ** 


Privileged User Signature: Date: 

Supervisor Signature: ' Date: 
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13.5 DCS-5000 General User Rules of Behavior Acknowledgement Form (U) 

As a general user of the DCS-5000, 1 acknowledge my responsibility to conform to the following 
requirements and conditions as directed by Department of Justice Order (DOJ) 2640.2D 
(Information Technology Security), DOJ-TS-OOl (DOJ Access Control Standards Password 
Management), Manual of Investigative Operations Guidelines Part 2, Section 26 (Classified 
National Security Information and Material) & 35 (FBI Automated Data Processing and 
Telecommunications Security Policy), the DCS-5000 System Security Plan, and local security 
operating procedures (SOP). These conditions are established for and apply to all AISs 
connected to DCS-5000. 

1. 1 understand that failure to sign this acknowledgment will result in denial of access to the 
DCS-5000. 

2. 1 understand the need to protect my password at the highest level of data it secures. I will not 
share my user password and/or account with any unauthorized persons. 

3. 1 understand I am responsible for all actions taken under my account. I will not attempt to 
"hack" the network. I will not attempt to gain access to data for which I am not specifically 
authorized, such as users’ files in their home directories. I will only use my special accesses or 
privileges to perform authorized tasks or mission-related functions on DCS-5000. 

4. 1 understand my responsibility to report any/all IS or network computer security problems to 
the DCS-5000 Information System Security Officer (ISSO), or Information Systems Security 
Manager (ISSM). 

5. 1 acknowledge my responsibility to use the network only for official government business. I 
understand I am required to report the discovery of any violations of this rule to the DCS-5000 
ISSO or ISSM. 

6. 1 understand that the network operates at the SECRET classification level. 1 have all 
clearances necessary for access to the network, and will not introduce or process data that the 
network is not specifically designed to handle as specified by DCS-5000 ISSO. 
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8. 1 understand my responsibility to appropriately protect all output generated under my account, 
to include printed output, removable media, and downloaded hard disk files. I understand that I 
am required to ensure all hard copy output and removable media is properly labeled as required 
by the regulations listed above. 

9. 1 understand my responsibility to not introduce any software or hardware not acquired through 
official channels (the DCS-5000 Configuration Management Board). I also acknowledge my 
responsibility to virus-scan all official and authorized software before introducing it into the 
DCS-5000. 

1 0. 1 acknowledge that all DCS-5000 equipment and related items are for the communication, 
transmission, processing, and storage of U.S. Government information only. These systems and 
equipment are subject to monitoring to ensure proper functioning, to protect against improper or 
unauthorized use or access, and to verify the presence or performance of applicable security 
features and procedures, and for tike purposes. Such monitoring may result in the acquisition, 
recording, and analysis of all data being communicated, transmitted, processed, or stored in this 
system by any user. If monitoring reveals possible evidence of criminal activity, such evidence 
may be provided to law enforcement personnel. In using this system, I expressly consent to such 
monitoring. 

1 1 . 1 will not violate any U.S. statute, and I understand that 1 am bound by the directives of the 
President of the United States, the Attorney General, Director of Central Intelligence (DCI), the 
Director FBI, Rules of Behavior, and local Standard Operating Procedures (SOP). I further 
understand that I cannot be ordered by any lesser authority to violate either the letter or the spirit 
of any U.S. statute, Executive Order, directive from the A6 DOJ, DCI, Director FBI, or local 
SOP. I bear sole responsibility and liability for any such violation. Suggested reading for this 
includes the Privacy Act of 1974, National Computer Security Act of 1987, Executive Order 
12958 (Classified National Security Information), Department of Justice Order 2640.2D 
(Information Technology Security), DOJ-TS-OOl (DOJ Access Control Standards Password 
Management), and Manual of Investigative Operations Guidelines Part 2, Section 26 (Classified 
National Security Information and Material) & 35 (FBI Automated Data Processing and 
Telecommunications Security Policy). 

12. 1 acknowledge my responsibility to conform to these requirements and conditions when using 
a DCS-5000 System. I also acknowledge that failure to comply with these requirements and 
conditions may constitute a security violation resulting in denial of access to the DCS-5000 
System. Additionally, such violations will be reported to the appropriate authorities for further 
action as deemed appropriate. 

13.1 have completed the required secure awareness training prior to receiving access to DCS- 
5000. 

14. A copy of this agreement will be kept on file with the DCS-5000 ISSO as part of my security 
agreement. 


Privileged User Signature: ; Date: 

Supervisor Signature: Date: 
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